CVE-2025-50610
Unknown
Unknown - Not Provided
BaseFortify
Publication date: 2025-08-13
Last updated on: 2025-08-15
Assigner: MITRE
Description
Description
A buffer overflow vulnerability has been discovered in Netis WF2880 v2.1.40207 in the FUN_00476598 function of the cgitest.cgi file. Attackers can trigger this vulnerability by controlling the value of wl_base_set_5g in the payload, which can cause the program to crash and potentially lead to a Denial of Service (DoS) attack.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| netis-systems | wf2880_firmware | 2.1.40207 |
| netis-systems | wf2880 | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-120 | The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer. |
Attack-Flow Graph
AI Powered Q&A
How can this vulnerability impact me? :
Exploiting this vulnerability can cause the affected program to crash, potentially leading to a Denial of Service (DoS) attack, which disrupts normal operation and availability of the device.
Can you explain this vulnerability to me?
This vulnerability is a buffer overflow in the Netis WF2880 router firmware version 2.1.40207, specifically in the FUN_00476598 function of the cgitest.cgi file. An attacker can exploit it by manipulating the wl_base_set_5g parameter in a payload, which can cause the program to crash.
Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70